header-logo
Suggest Exploit
vendor:
Campsite
by:
Unknown
9.3
CVSS
CRITICAL
Remote File Include
CWE
Product Name: Campsite
Affected Version From: 2.6.2001
Affected Version To: 2.6.2001
Patch Exists: YES
Related CWE:
CPE: a:campware:campsite:2.6.1
Metasploit:
Other Scripts:
Platforms Tested:
2007

Campsite Remote File Include Vulnerability

Campsite is prone to multiple remote file-include vulnerabilities. Exploiting this issue allows remote attackers to execute code in the context of the webserver.

Mitigation:

Update to the latest version of Campsite (2.6.1) or later. Ensure that user input is properly validated and sanitized.
Source

Exploit-DB raw data:

source: https://www.securityfocus.com/bid/23874/info
           
Campsite is prone to multiple remote file-include vulnerabilities.
           
Exploiting this issue allows remote attackers to execute code in the context of the webserver.
           
This issue affects Campsite 2.6.1. Earlier versions may also be affected.

http://www.example.com/classes/Country.php?g_DocumentRoot=shell.txt?